The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Read-Only Domain Controller and Server Core
Time: 00:52 EST/05:52 GMT | News Source: *Linked Within Post* | Posted By: Kenneth van Surksum

By default, an Read Only DC doesn't actually store any passwords ("user secrets"). Not only that, but the replication is unidirectional so an RODC won't replicate any information back to the primary domain controller. These features in-turn reduce the attack surface of a Windows Server.

The story that is trying to be won with this new feature in this release is the Branch Office story. Basically, for a company that is large enough to have branch offices (where physical security might not be as strong), instead of deploying a fully blown domain controller, you can now deploy a read-only domain controller. This ensures that if the remote domain controller is compromised, that the entire AD forest is not compromised (since by default, there is very little chance that a username/password combination is cached that could be used to compromise the rest of the domain). Combine this new features with the new "Server Core" installation option, and you come one step closer to a true "domain appliance." What is Server Core? Server Core is an install path of Longhorn Server (as of Beta 2) that does not install the unnecessary components of the OS (like the GUI or applications like Internet Explorer (after all, why in the world would I need Internet Explorer on a Server?!?!?)). Not only does this further reduce the attack surface of Windows Server, it also will minimize the amount of patching and maintenance that is required. This is something that the Linux/Unix servers have been doing great for a while, so I'm happy to see Windows Server finally catching up in this space!

Write Comment
Return to News

  Displaying 576 through 579 of 579
Prev | First
  The time now is 1:51:01 PM ET.
Any comment problems? E-mail us
#576 By 4240821 (82.115.4.230) at 7/26/2025 8:29:54 AM
https://moanio.com/video.php?id=4199
https://moanio.com/video.php?id=1650
https://moanio.com/video.php?id=2191
https://moanio.com/video.php?id=5137
https://moanio.com/video.php?id=2185
https://moanio.com/video.php?id=1828
https://moanio.com/video.php?id=4294
https://moanio.com/video.php?id=3282
https://moanio.com/video.php?id=1873
https://moanio.com/video.php?id=4110

#577 By 4240821 (178.217.45.24) at 7/28/2025 12:55:31 AM
https://moanio.com/video.php?id=601
https://moanio.com/video.php?id=346
https://moanio.com/video.php?id=3703
https://moanio.com/video.php?id=1409
https://moanio.com/video.php?id=4556
https://moanio.com/video.php?id=5652
https://moanio.com/video.php?id=3997
https://moanio.com/video.php?id=4237
https://moanio.com/video.php?id=762
https://moanio.com/video.php?id=4118

#578 By 4240821 (82.115.4.230) at 7/29/2025 6:08:29 AM
https://justpaste.me/Zxf51
https://justpaste.me/b9DI
https://justpaste.me/Z0Qw
https://justpaste.me/bbIn4
https://justpaste.me/emBN2
https://justpaste.me/ZGFq3
https://justpaste.me/YwZX1
https://justpaste.me/abwZ2
https://justpaste.me/bRFc
https://justpaste.me/byaV6

#579 By 4240821 (82.115.4.230) at 7/29/2025 10:19:36 PM
https://justpaste.me/fEaj3
https://justpaste.me/fbXM1
https://justpaste.me/fTFG6
https://justpaste.me/eKnK2
https://justpaste.me/a7WU
https://justpaste.me/fgfF2
https://justpaste.me/aJRY2
https://justpaste.me/ZpJa
https://justpaste.me/Zsje3
https://justpaste.me/dJBd5

Write Comment
Return to News
  Displaying 576 through 579 of 579
Prev | First
  The time now is 1:51:01 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *